• Biden orders review, new rules governing US national cybersecurit

    From TechnologyDaily@1337:1/100 to All on Fri Jan 17 15:15:04 2025
    Biden orders review, new rules governing US national cybersecurity

    Date:
    Fri, 17 Jan 2025 15:14:00 +0000

    Description:
    President Biden has introduced a list of stringent security measures for the federal government and software providers to adhere to, or lose their contracts.

    FULL STORY ======================================================================Presiden t Biden introduces new governmental cybersecurity requirements Third-party software providers must demonstrate adherence to new requirements The federal government must use end-to-end encryption by default

    In one of his last acts as President of the United States, Joe Biden has signed an executive order aimed at strengthening US national cybersecurity.

    The order lays out a series of checks and reviews on third-party software providers for both government systems and critical infrastructure in order to ensure they are adhering to established cybersecurity standards and making active efforts to eradicate existing vulnerabilities.

    The executive order posits the Peoples Republic of China is the main threat
    to vulnerable networks, likely referencing numerous attacks against US critical infrastructure in early 2024 by the Chinese state-sponsored Volt Typhoon group, and subsequent attacks against US telecommunications networks by the group . New security standards

    I am ordering additional actions to improve our Nations cybersecurity, focusing on defending our digital infrastructure, securing the services and capabilities most vital to the digital domain, and building our capability to address key threats, President Biden's order said.

    It also builds upon previous requirements laid out in the Executive Order on Improving the Nations Cybersecurity from 2021, and implements greater
    security checks on third-party providers to ensure software providers that support critical Government services are following the practices to which
    they attest.

    Third-party providers will therefore have to provide frequent demonstrations that their software and supply chains are secure, with the contracting agency being notified of those failing to meet security requirements.

    The federal government is also mandated to adopt identity management software , phishing-resistant authentication , and end-to-end encrypted communications by default across DNS protocols, email, voice and video conferencing, and instant messaging.

    Biden also looks to address the future threat of cryptanalytically relevant quantum computers (CRQC) which, when viable, will be able to break many of
    the encryption algorithms in use today . US agencies will be required to
    adopt quantum-safe encryption methods authorised by the National Institute of Standards and Technology (NIST). You might also like Take a look at our guide to the best endpoint protection Keep your device secure with the best firewalls Many firms see cyberattacks as their top business concern this year



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/biden-orders-review-new-rules-governing -us-national-cybersecurity


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)